-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
On Mon, Oct 27, 2014 at 09:53:30AM -0500, Major Hayden wrote:
On 10/27/14 8:33, Eric H. Christensen wrote:
> What, exactly, would you expect to see on a security announcements
> list?
>
> -- Eric
I'd like to see something on par with the standard RHEL errata update
emails when the update is related to a security issue. Getting an
email with links to the package and links to relevant CVE's (or other
trackers) would allow me to rapidly assess the situation and know what
priority I should place on an upgrade.
This seems to already be happening[0] on the package-announce list[1]. Security updates
are being sent with [SECURITY] so I wonder if this is being done with topics.
[0]
https://lists.fedoraproject.org/pipermail/package-announce/2014-October/1...
[1]
https://lists.fedoraproject.org/pipermail/package-announce/
- -- Eric
- --------------------------------------------------
Eric "Sparks" Christensen
Red Hat, Inc - Product Security
sparks(a)redhat.com - sparks(a)fedoraproject.org
097C 82C3 52DF C64A 50C2 E3A3 8076 ABDE 024B B3D1
- --------------------------------------------------
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
iQGcBAEBCgAGBQJUTmtaAAoJEB/kgVGp2CYvs3AL/i33hB7iPVl66GhiZsxQkRYL
Fv3NrdlOw87EeSpiYphpl1mvhkjqRxgLQakHVVo/jQ/syRR2u7ZS9YHPCWskkgEJ
isScoeX8nSfhd9sbIKJOh5xC/rBquGWChI22dSBC+8rT9VlGqbXpnZ33nPOWWBam
eOEdmw/4qMffYhNQpDzFHRsPW7DJ9YfFb7f0Rxt4z/B1QHywUYjbCJooPmAldgTg
ul93ghMq1A4I8hdythx7SJUAZWhHdfE2MiCxbZTmI88KuJf9MVmIkqsPjp7t7Xao
R0oIEL8/dAcykLUwgZkKGl3zv4/TV548chWb5ZZ58UJRvSZXsYAS8EEkNbksDIov
9cNNwgkzpxhAH/2lPRdUTgFzWcAYUuM3SQDJ0dD70fv959s6zDfq1hCPUlAZfmAb
FnuLGUEM+wBe9ad3ib5d1Ju87Fv+JhV+1Ek75kJwlh+STq4kRFaoO9e8sXtAJzCM
GzGd5Uh1jEUv/cwBmjdxO8PJahpLJNYRbw8z/NDrug==
=Skcm
-----END PGP SIGNATURE-----